#general

1 messages Β· Page 192 of 1

rustic carbon
#

Ohhhh I thought it was a htb one

#

aight bet

#

Why not? sadglas

sharp shuttle
#

you will get pressed hard by people more confrontational than myself

meager kernel
#

@supple plume what if I exploit it just a little bit

#

And then report it

tawdry sorrel
#

CJCA CWES and then CPTS
Cuz CWES is easier than CPTS it will make things easier for you

molten bobcat
supple plume
#

But if it just was words

molten bobcat
supple plume
#

You know

sharp shuttle
rustic carbon
molten bobcat
#

Bro under no circumstances are you to exploit a vuln you know to exist

rustic carbon
#

I need both blue and red knowledge for it and I will lack blue knowledge

molten bobcat
#

Report the vuln and move on

supple plume
meager kernel
tawdry sorrel
molten bobcat
tawdry sorrel
nimble tundra
rustic carbon
molten bobcat
#

The law doesn't suggest you can do just a little crime and have it be fine TF dude lmao

sharp shuttle
supple plume
sharp shuttle
#

you kids are fucking annoying

rustic carbon
molten bobcat
tawdry sorrel
sharp shuttle
#

explain that

rustic carbon
nimble tundra
molten bobcat
#

I don't believe that to be correct sir

sharp shuttle
#

just tell me what you mean

#

what is cyber swat

supple plume
#

Aaaah

sharp shuttle
#

btw SWAT stands for Special Weapons and Tactics

molten bobcat
nimble tundra
rustic carbon
# sharp shuttle explain that

Having more knowledge than a pentester... making viruses, exploiting webs, networks... overall a menace kinda πŸ’€
-# thats what I heard

meager kernel
#

Dude I'm so fucking excited and filled with blood rush rn

supple plume
rustic carbon
meager kernel
#

Im actually easily getting a reverse shell

#

In the server

#

😭😭

molten bobcat
#

A red team is comprised of pentesters

supple plume
molten bobcat
#

Just to uh throw that out there

supple plume
#

You can change your grades

nimble tundra
meager kernel
#

Irl pentest are actually like HTB I can't fucking believe it

supple plume
#

Please don't get ideas from me

sharp shuttle
tawdry sorrel
meager kernel
molten bobcat
#

That's such horseshit stupid advice

meager kernel
#

This is so crazy

rustic carbon
molten bobcat
#

Are you guys really this stupid?

sharp shuttle
#

Yes they are

supple plume
meager kernel
#

What

molten bobcat
#

Stop dropping reverse shells on vulnerable targets

nimble tundra
rustic carbon
meager kernel
molten bobcat
supple plume
#

Please if someone gets any bad advice from me keep in mind I am stupid

molten bobcat
#

NOT EXPLOIT AND GET RCE

eternal mango
#

@meager kernel before reporting anything, you said you have authorisation to do so, make sure you get it in WRITING, with clearly defined scope

eternal mango
#

Otherwise you may well find yourself thrown out

meager kernel
nimble tundra
molten bobcat
#

And then the children learned about what Scope is

rustic carbon
#

Damnnnn

eternal mango
#

Just because your tutor said it was ok does not mean the whole dept responsible for the platform is in agreement

dusky jacinth
#

Seems fun in here rn

sharp shuttle
eternal mango
#

(but yes also maybe I guess?)

meager kernel
nimble tundra
#

well he will be in a quantum state where he is in and out at the same time πŸ’€

rustic carbon
#

Yee sounds about right

eternal mango
#

Make sure you ask it clearly that your TUTOR has the power to authorise such testing too

dusky jacinth
#

Lol

eternal mango
#

Just because they said you can, doesn't mean they can allow you to

meager kernel
#

@eternal mango dude, I can't believe it but irl bug hunting is so much like HTB

rustic carbon
eternal mango
#

It can be fun

molten bobcat
#

If you can call years of experience in the field "homework" then sure

eternal mango
#

or it can be frustrating

#

πŸ˜„

nimble tundra
#

and traumatising

rustic carbon
meager kernel
#

My college has zero firewall protection πŸ§β€β™‚οΈ

supple plume
#

And duplicated why

molten bobcat
#

That can't be true lol

dusky jacinth
#

That’s tuff

meager kernel
#

There's like 3 ports on it

sharp shuttle
#

Okay I just need a refresher, the majority of chatters right now are non-american correct?

rustic carbon
#

Ay

molten bobcat
#

Server singular?

rustic carbon
#

that's crazy

meager kernel
#

The main college website operates on HTTP but there's a hidden unreleased environment on HTTPS

nimble tundra
dusky jacinth
#

You, cloud and myself ik are American

rustic carbon
molten bobcat
sharp shuttle
#

Do they not teach ethics in other countries relating to cybersecurity? You guys are embarrasing your home countries

rustic carbon
nimble tundra
dusky jacinth
#

Yikes

meager kernel
#

I don't even have a degree in cybersecurity

tawdry sorrel
#

And I am not an American

supple plume
dusky jacinth
#

πŸ’€

sharp shuttle
#

That's crazy, and you guys are getting our jobs

#

were doomed

rustic carbon
dusky jacinth
#

Indeed

nimble tundra
#

i am not American habibi

supple plume
dusky jacinth
#

I’m gonna start an anon revival

tawdry sorrel
eternal mango
rustic carbon
#

I dont think anyone is american here

dusky jacinth
#

Who wants to be part of a cyber activist group !

eternal mango
#

Nor does it take a degree to have a strong base of experience or skill in.. well, any field

dusky jacinth
#

Kidding

#

Btw

nimble tundra
rustic carbon
sharp shuttle
molten bobcat
#

Goblin am I getting too old for this

rustic carbon
#

If you say we started at the same time Im gonna be pissed kekπŸ₯€

molten bobcat
eternal mango
#

Anyway, just get clear and documented permission from not only your tutor, but the college head too.

#

Then go to town, and stay IN SCOPE

eternal mango
nimble tundra
#

anyways guys i will brb after eating za shawarma

dusky jacinth
#

Good boys stay in scope

molten bobcat
#

The children need to learn the ways

dusky jacinth
#

Men with goth GFs stay in scope

eternal mango
#

And 100% that scope will not include sharing details of your colleges vulnerabilities in DM with randos

supple plume
# sharp shuttle were doomed

I used to warn my clients about RCEs and SQLIs when I read the source code, they never care so I just try to do my job as best I can and move on

tawdry sorrel
molten bobcat
nimble tundra
lime trout
eternal mango
#

mmhmn

sharp shuttle
#

Cybersecurity is not "hrr drrr im hAcKiNg!!" its:

  • permission from 5+ people
  • a well-defined scoped engagement that took months to come to agreement on
  • tons of liability
  • 99% reporting
#

you guys are annoying

lime trout
#

Too much risk and liability

eternal mango
#

yarp

molten bobcat
#

If I see another PDF converter malware I'm gonna throw up

eternal mango
#

haaahah

nimble tundra
molten bobcat
#

"what was the initial access vector???"

#

YOU

rustic carbon
#

If it wasnt for the active directories burning me out FeelsBadMan

molten bobcat
#

YOU WERE!

hoary nebula
#

end users are stupid

sharp shuttle
molten bobcat
#

Issue rests on its fat ass between keyboard and chair

dusky jacinth
dusky jacinth
#

Suprema**

#

Actually

#

Nvm

sharp shuttle
dusky jacinth
#

I was abt to say

hoary nebula
#

Samsung galaxy s24

lime trout
supple plume
lime trout
#

Great for physical tests

#

With destructive in scope

dusky jacinth
eternal mango
#

Anyway, tldr nice work, but be careful. Not everyone is as open as your tutor, and your tutor unlikely has authority to permit such intrusive testing.

#

One fuck up can ruin your future career perspectives

lime trout
sharp shuttle
#

Your tutor is certainly a moron

hoary nebula
#

50.caliber

sharp shuttle
#

take his advice with grains of salts

molten bobcat
hoary nebula
#

ESPN !!!

lime trout
#

Since I doubt a reasonable person would expect a tutor to have the capacity to give it

#

Or the ability to bind the college to an agreement

silver forge
#

mm binding

sharp shuttle
#

Its like stealing a car and saying that the guy next to the car said it was his and you could have it

meager kernel
eternal mango
#

Ok well hold up

#

Speak to your tutor first

lime trout
eternal mango
#

If you go to your dean and they are like "YOU DID WHAT?"

meager kernel
#

Then I'll perform the full bug hunt and report it

lime trout
#

One could reasonably believe it was their car

eternal mango
#

Focus on your college work

supple plume
hoary nebula
lime trout
#

It’s too much liability and risk

meager kernel
eternal mango
#

If you get extra time and permission to test things, great.. but just.. no, be careful

molten bobcat
#

Yeah the IT department of the college is not a huge fan of students pentesting things without permission

supple plume
#

Rev shell = jail

meager kernel
molten bobcat
#

Source: I was this guy

eternal mango
#

They will not give a contract for you to test the college infra

lime trout
eternal mango
#

You are more likely to get kicked out, even with best intent

sharp shuttle
#

lmfao he doesnt even know what liability means

molten bobcat
#

It means you're responsible for damages πŸ™‚

hoary nebula
#

elowel

eternal mango
#

Just trying to help you avoid a mess 22Kratos

meager kernel
meager kernel
tawdry sorrel
#

Take it easy he is trying to do a good thing

eternal mango
#

It's easy to do things like that with the best intent, but also easy to get in to a mess if you do not have legal permission and experience to understand limitations and liability

meager kernel
#

It's just I got so excited cause I did a real life bug hunt and it felt so good πŸ˜­πŸ˜‚

eternal mango
#

We're trying to help protect them D3v

alpine pumice
#

we'll put money on your books

sharp shuttle
lime trout
# meager kernel Uhhhh

Letting a college student fuck around with a production network, containing legally protected data and other PII is just a recipe for disaster

#

And they get 0 value out of it

tawdry sorrel
lime trout
#

No one would let a student do that

eternal mango
#

You could easily be turned into a scapegoat too if something goes wrong

#

e.g. take down a critical system by mistake

sharp shuttle
#

this is why i can never go back to blue team, in any capacity

molten bobcat
#

I made some college kids shit their pants when I had to approach them and ask why they had pentesting tools on the desktop of one of my hosts.

sharp shuttle
#

fuck these kids man, i am fully demoralized

eternal mango
#

I noticed

#

πŸ˜…

lime trout
#

I get how you could not understand this stuff

sharp shuttle
#

its so much worse than any of us think

hoary nebula
#

how did they install in the first place, should have denied install access

lime trout
#

Cause to them it’s just poking around and learning

lime trout
#

And not thinking of the risks involved

meager kernel
#

I will be careful

sharp shuttle
#

"learning"

#

i dont think thats part of the equation

rustic carbon
meager kernel
#

Sorry I got a bit excited rn πŸ˜…πŸ˜…

molten bobcat
#

Installation =/= downloads

lime trout
meager kernel
#

It's just that a real life bug hunt is kinda exciting

#

And gave me a blood rush

terse dirge
eternal mango
#

If you're after a real target to practice on

sharp shuttle
#

im not going to argue about the doomed kids, i am going to say they cant read

eternal mango
#

Check out the US .gov bug scopes

#

They are wide, and good practice

hoary nebula
#

on our hosts, no one can download anything without admin access

rustic carbon
hoary nebula
#

download or install

harsh elm
#

Hi guys

worthy cargo
meager kernel
worthy cargo
#

Full demoralization

molten bobcat
#

Places like schools and businesses have to balance security with accessibility.

eternal mango
sharp shuttle
#

its not supposed to be mr fucking robot

lime trout
#

It’s why doing independent work is risky

molten bobcat
#

It's only scary if you're doing it on your own with no guidance or backup at all lmao

rustic carbon
#

Damn

#

Alright interesting

eternal mango
lime trout
rustic carbon
tawdry sorrel
#

Developers nowadays use ai for making thier websites and apps so there will be valnurabilities

rustic carbon
sharp shuttle
molten bobcat
rustic carbon
#

yall guys can hack ???

molten bobcat
#

Factory equipment is deadly when it breaks

rustic carbon
#

if you are near them tho

sharp shuttle
molten bobcat
zealous island
#

hello im new to this

terse dirge
eternal mango
lime trout
west lynxBOT
lime trout
#

Any ICS really

molten bobcat
#

The list goes on and on yeh

rustic carbon
sharp shuttle
#

Yep

rustic carbon
zealous island
#

thanks i apreaceate it

hard harbor
rustic carbon
#

As a red teamer

lime trout
molten bobcat
#

But you shouldn't as a first go at it lol

sharp shuttle
rustic carbon
eternal mango
lime trout
harsh elm
#

Guys if I want a service like some help with hacking stuff

#

Where do I ask

sharp shuttle
lime trout
#

You have more upside, but also more risk and overhead

eternal mango
#

No @harsh elm

terse dirge
#

bruh why is there soo much async rat malware going around????

rustic carbon
harsh elm
lime trout
#

When you work for someone they take alot of the risk on

eternal mango
#

This is a server for Hack The Box, a platform to learn. We're not here to provide hacking services.

lime trout
#

Compared to you doing it yourself

rustic carbon
sharp shuttle
harsh elm
#

Oh okay

lime trout
sharp shuttle
#

my god

#

are these dudes for real

tawdry sorrel
#

Just kidding

lime trout
worthy cargo
#

The fuck am I reading

sharp shuttle
#

its like a game to them

#

what the hell

lime trout
#

(/s)

meager kernel
#

@eternal mango alright, so my plan is, to go tomorrow and tell my Head of Department that I found a vulnerablility (he said to me earlier that I'm allowed to find vulns and report them), and then tell him to get me a written letter by the higher ups so that there's no action against me and I can safely give a whole write up
Good plan or bad plan?

terse dirge
hoary nebula
#

kids these days

rustic carbon
tawdry sorrel
worthy cargo
eternal mango
#

Ask for the letter of auth first, do not mention any findings

meager kernel
lime trout
molten bobcat
#

I'm just cloud

lime trout
#

G0blin is more of a head person lol

rustic carbon
#

are any germans here ?

eternal mango
#

But honestly, you will not get a letter of auth from the college in a legally binding matter

hoary nebula
#

wunderbar

meager kernel
terse dirge
eternal mango
#

If you do, great.. but come on

terse dirge
#

I think it's nitro only tho

eternal mango
#

Be. Careful.

rustic carbon
eternal mango
#

Even professionals mess up

#

You are in college to learn, focus on your colelge work

lime trout
sharp shuttle
#

the amount of failure you will experience will be overwhelming

molten bobcat
#

Goblin would you like a Christmas tree snack cake

lime trout
#

Errors and Omissions iirc

#

For this

molten bobcat
eternal mango
#

I'd love a conifer biscuit though

rustic carbon
#

Yeah g0blin I remember him the one that helped me in the past when I first got in the server prayge

lime trout
#

Yo brath

#

Your in OR no?

sharp shuttle
#

I am

molten bobcat
lime trout
#

Half debating moving there, wdyt of it

sharp shuttle
#

Youll do well here

meager kernel
#

I will be

terse dirge
lime trout
sharp shuttle
#

I can see you joining our hackspaces pretty quickly

meager kernel
#

@eternal mango is it natural to feel an adrenaline rush when you find some bug

sharp shuttle
#

yeah, youll fit right in

molten bobcat
#

All I see is cred stealers disguised as PDF converters

#

Please help me

lime trout
#

I presume rent is mad

rustic carbon
#

what do you think

sharp shuttle
#

thats just a US issue

#

but yeah

lime trout
eternal mango
#

Keep your composure

lime trout
#

Or compared to Canada

molten bobcat
#

CLOUD YOU SAY

meager kernel
eternal mango
#

HAH

#

I knew you'd say that Cloud

#

πŸ˜„

sharp shuttle
#

I am not sure what rents are right now, but portland is great because you can live along the trimet / train and get to portland under 40 minutes at the farthest parts

#

and it reaches super far

rustic carbon
#

Or no?

terse dirge
#

chat, I think Mozi might be a slight problem Kappa

lime trout
sharp shuttle
#

yes there is

eternal mango
meager kernel
#

Imagine an easy machine being the equivalent of my college security 😭😭

sharp shuttle
#

goes all the way to alaska

lime trout
#

Based

hard harbor
#

My old roommate moved out there a few years ago from midwest and hasn’t looked back since

rustic carbon
lime trout
#

Eh, still waiting on USCIS to do their job but ty for info

sharp shuttle
#

if you end up moving ill happilly get you introduced to all the cyber folks here

hoary nebula
#

northwest is best

lime trout
#

Need my green card first

#

Mind if I dm?

sharp shuttle
#

no problem

hard harbor
#

I was told the state public jobs out there pay decently enough. True?

rustic carbon
#

a sweet one too

eternal mango
#

Freddo is life

sharp shuttle
#

the majority of ICS work i do is through state programs

lime trout
#

No thank you

sharp shuttle
#

avg contract is 10k

eternal mango
#

Ew sweet?!

rustic carbon
eternal mango
#

Sugar doesn't belong in coffee

#

πŸ˜…

sharp shuttle
hard harbor
#

I’m trying to stay in a public role unless something swings me private. Them PTO benefits are nice.

eternal mango
lime trout
#

If I went to EU I’d honestly goto like, Portugal or UK

rustic carbon
#

It's bitter

lime trout
#

Easy visa

eternal mango
#

Yes, black coffee is the only way

#

I've never once there been asked if I want sugar in freddo

#

It's always black

worthy cargo
#

Just got a call from my cousin. She's like I got drunk and uninstalled what's app and now I reinstalled it but I can't remember my password. Can you hack it? I'm like I don't do that. Sorry. WTF man.

eternal mango
#

Maybe there's the expectation of you asking for it instead I guess

rustic carbon
#

It tastes like battery acid for me

eternal mango
#

It's like bitter

#

You get used to it

#

(bitter as in the drink, beer, etc)

rustic carbon
#

Its healthy tho unlike sweet coffee

#

Thats the plus

eternal mango
#

If you say so

worthy cargo
#

I don't even drink coffee or tea

#

I just drink water mostly

eternal mango
#

I don't know how adding sugar to something would make it healthier

worthy cargo
#

Sugar is a poison

#

Some say

#

In excess it is a poison

#

Makes you older faster

eternal mango
#

Water too

#

It's so evil

#

πŸ˜„

rustic carbon
terse dirge
#

I like my sweeteners artificial made by man!

rustic carbon
#

Imagine drinking a sweet coffee plus something sweet after lunch etc etc

#

thank god I dont eat a lot of sugar except my coffee kek

#

can someone help me to learn the basics ?

hard harbor
west lynxBOT
hard harbor
rustic carbon
eternal mango
#

I rarely eat anything sweet these days tbh

rustic carbon
#

Same here

#

Idk I lost my apetite lol

eternal mango
#

The odd treat now and again if the daughter asks for a pastry or something from the shop

#

Otherwise yeah, most of my sugar comes from 🍺 πŸ˜…

rustic carbon
#

Beer?

eternal mango
#

That's what I said, yeah

worthy cargo
#

Beer is carbs, carbs is sugar

#

Ultimately

rustic carbon
#

Ohhh right

worthy cargo
#

That's why beer makes you fat

terse dirge
#

alcohol is interesting. Maybe I'm drinking stuff that's too strong but it's kinda meh

worthy cargo
#

Beer belly

rustic carbon
#

Beer belleh

#

Lmao

#

I was never a beer dude

#

But Im a huge wine guy

hard harbor
#

I like a good stout

hoary nebula
#

same

#

Stout

rustic carbon
#

especially cocktails

#

I tried once at a bar a mango cocktail and I never got another cocktail again lol

zealous island
terse dirge
zealous island
#

where

#

can u explain please?

#

that would be nice

rustic carbon
hoary nebula
#

you just learned about subdomains

zealous island
#

and the academy one?

terse dirge
worthy cargo
verbal willow
#

Hey, anyone up for taking a look at some of my bug bounty reports (not fully reviewed yet) and giving me honest feedback on which ones are likely to be accepted or rejected?
I’ve got a few vulnerabilities (info leak, unauthorized access, open redirect/SSRF, etc.) and just want an objective opinion before I submit them.

worthy cargo
#

Someone might steal 'em

sharp shuttle
terse dirge
#

pretty sure it's also against the whole disclosure process too kek

rustic carbon
#

Alright broskis Imma peace out now

#

Talk to you guys this Friday again sadglas

#

Going MIA to finally finish this damn module once and for all

sharp shuttle
#

see ya

meager kernel
#

@eternal mango btw thanks alot man

#

I was getting a bit too excited

#

Might've done a mistake

sharp shuttle
#

proud of you for admitting it

meager kernel
#

I'll tread carefully and report it responsibily

#

Firstly I'll get a written permission for all this

eternal mango
#

No worries 22Kratos

#

Good luck

hoary nebula
#

@exotic pendant friday -5

verbal willow
signal mica
#

warm beer 😩

hoary nebula
#

ewwwwwwwwww

worthy cargo
hoary nebula
#

A Balrog of Morgoth

crimson orbit
#

hi

hoary nebula
signal mica
#

really you linked a john hammond video

#

yannick...

hoary nebula
#

its intresting

#

why the fuck is discord lagging as fuck

#

freezing every 2 sec when typing

supple plume
supple plume
elder inlet
#

Donating computer power to science is a nice feeling. CPU is donating to cancer research, GPU is donating to Alzheimers research, and I'm seeding Linux ISO's for freedom.

eternal mango
#

Folding@home ❀️

#

Truly a project ahead of its time

vivid flower
#

I used to run that

#
#

Because i bought it in vietnam

elder inlet
eternal mango
#

Nice one

vivid flower
#

I hate phones so goddamn much

hoary nebula
#

why

cloud osprey
elder inlet
#

And of course, you gotta seed those Linux ISO's

cloud osprey
vivid flower
lime trout
#

imagine using an app named Cash

vivid flower
#

I dont really use it that much its left over from asia times

supple plume
lime trout
vivid flower
#

I use personal checks

lime trout
#

huh?

#

people still use those???

vivid flower
#

Well yeah

lime trout
#

i have never once Written, or been given a cheque

vivid flower
#

Why would you pay a middle man if you can just write a check

lime trout
#

its built into banks apps.....

vivid flower
#

Okay but then your transaction is broadcast to credit agencies

lime trout
#

huh

supple plume
#

Writing a check is something I've only seen in shows about the 60s

lime trout
#

not anymore then using a personal cheque would

#

you can also use ACH

#

im weird and pay my rent via credit card

vivid flower
#

If you want to keep a bank account private the only way it doesnt get picked up by equifax is if you only use checks

lime trout
#

cause they c harge me like

#

$7 to do it

#

but i get ~$20 in value

vivid flower
#

Getting cc rewards on rent and taxes is pretty based ngl

lime trout
#

helped me hit the $8k spend for amex plat 😭

#

that was a rough one

vivid flower
#

Fancy

lime trout
#

honestly only reason i could hit it was rent tbh

lime trout
#

unsure if ill keep past first year

vivid flower
#

When i was churning i met my minimum spend by renting airbnbs monthly instead of renting

lime trout
#

i dont get how that maths

#

since wouldn't you be spending more?

#

as short term rentals cost more

vivid flower
#

I would snipe new users and get that 40% discount on top of the monthly discount. Sometimes id only pay 300 dollars a month

lime trout
#

ahh

#

In most cases it doesnt math

#

and it costs more

supple plume
#

I pay with normal bank transfer

lime trout
#

Yeah, EFT or ACH is common

supple plume
#

What is wrong with that?

vivid flower
#

You have to be good at it to save money doing that but at least i never had to furnish an apartment or sign a lease to a slum lord

lime trout
#

i just get enough points out of it that i can use at a high enough rate to make it a positive value

#

since i can get 3-4cpp on amex MR

vivid flower
#

And usually people are happy to see me and id have a kitchenette or something

supple plume
#

To pay rent is not recommended to use cash

lime trout
#

Debit card

#

ACH

vivid flower
#

Nowadays id just car camp instead of renting

eternal mango
#

Keeping a healthy credit card payment / repayment helps build credit score too, and if you pay before interest rolls in there's no difference between just using a debit

lime trout
#

cause it costs 2-4% to process a credit card

#

and they just pass onto you

lime trout
#

and it'll report the same

vivid flower
#

Way less stress than being a wagie

eternal mango
#

Keeping a healthy credit balance impacts credit score in the UK

#

e.g. over / under utilisation has an impact

lime trout
#

it doesnt matter how much you spend, just that its paid

supple plume
#

Use nitro to pay muth foxspin

lime trout
eternal mango
#

It does in the UK

lime trout
#

here util is counted, but it has no history

#

so you just pay down 30-45 days before a new credit application

#

and running a high balance is good sometimes for CLIs

eternal mango
#

e.g. if you have a Β£10k credit and don't use it, that is a negative

eternal mango
#

If you have a 10k and use 8k often, that's negative

vivid flower
#

Really thats dum

eternal mango
#

If you have 10k and keep it around 10-20%, that's positive

lime trout
#

thats dumb af

eternal mango
#

Well yeah

#

The whole credit score system is a piece of shit

vivid flower
#

Shouldnt it be low % util

eternal mango
#

Nah

lime trout
#

i have like, 80k in total credit extended and i barely touch any of it

eternal mango
#

They want people to use the credit, but be able to pay it without trouble

lime trout
#

bar a few cirmcumstances

eternal mango
#

No usage, no value, too much, big risk

rustic carbon
#

Isnt there a better benefit to use credit card instead of debit?

eternal mango
#

Just right amount, means low risk value

rustic carbon
#

Thats why I use credit

lime trout
#

Rewards

rustic carbon
eternal mango
lime trout
#

Flexibility with expenditure

eternal mango
#

If anything, fraud protection is the BIGGEST benefit

#

Can't chargeback a debit

lime trout
#

Purchase Insurance is also 10/10

eternal mango
#

Can a credit

rustic carbon
cloud osprey
lime trout
supple plume
#

Can't charge my debit card either since I have 0€ on it

lime trout
#

rather then it go out right away

lime trout
#

unlike with credit you get instant credit

supple plume
#

Fraud protection πŸ’ͺ

eternal mango
#

Went back to reply about HTB staff if they are mostly UK, but can't see who said it now

#

But the answer is no

#

Majority is GR, but we have staff globally

lime trout
#

if i break/lose/stolen something its just covered

cloud osprey
#

my bank will refund any disputed claims immediately

rustic carbon
#

I am proud sadglas

lime trout
terse dirge
#

No drinks for me tonight. I had allergy stuff

lime trout
#

just what ive heard

#

my only chargeback exp is with Amex

#

and theyre great to deal with

rustic carbon
#

Do you guys do htb events in greece too?

#

With members allowed tho

lime trout
rustic carbon
lime trout
#

return items to CC company if its after return period

eternal mango
#

They are public, anyone can join them

supple plume
#

Omster πŸ‘‡

lime trout
#

Omster πŸ‘‡

rustic carbon
eternal mango
#

All good, me too sometimes

rustic carbon
#

They're all online tho?

#

Not fun

#

lmao

eternal mango
#

No

tiny canyon
#

@terse dirge just committed cyberterrorism on my neighbours wifi

supple plume
#

Dang

eternal mango
#

There are many in person meetups people organise

supple plume
#

@terse dirge that is too much

rustic carbon
#

Didnt find any now

eternal mango
#

Yes, we get shown photos and feedback from awesome meetup hosts frequently

rustic carbon
#

Do you guys participate in them too?

cloud osprey
rustic carbon
eternal mango
rustic carbon
eternal mango
#

but I'm not really involved in that side of things, I'm just saying what I see

rustic carbon
#

Even british ones or other countries in gr too?

eternal mango
#

Whenever they are able or it is arranged

lime trout
rustic carbon
lime trout
#

staff involvement will depend on which meetup

#

usually just happens one is close

eternal mango
#

yarp

supple plume
#

When in Spain?

rustic carbon
elder inlet
# lime trout https://hackthebox.com/meetups

Suggestion: Have a search feature. Or atleast have an upcoming event show up first, Cause Quebec Canada came up first and that ended. But the one in Switzerland is next upcoming and you have to scroll all the way over to know that

lime trout
#

/feedback prayge

supple plume
terse dirge
eternal mango
#

Not sure why we aren't linking there anymore on the website

rustic carbon
supple plume
#

Hallicon πŸ‘‡

rustic carbon
#

Exactly..

#

why?

eternal mango
#

?

frail turtle
#

God i am suffering from this weird virus now for like 3 days phlegm, bloody mucus, and now bloodshot eyes. I have no idea what it is but it's a respiratory virus

rustic carbon
#

It's even more clear than the previous one

eternal mango
#

Like I said, I don't know, we were

#

Things change

supple plume
eternal mango
#

Could be it's in the TODO after changes to the website

rustic carbon
#

So what do you do on the Cyber training gamified?

eternal mango
#

I'll mention it internally anyway

frail turtle
#

I look like i caught a virus from africa or the islands this shit isnt normal

#

Thanks

supple plume
frail turtle
#

I never had a respiratory virus that affected my eyes though its pretty scary but ive been getting better

eternal mango
rustic carbon
#

Not you personally NotLikeThis

#

Overall what's the goal

#

Oh nvm it has a description

eternal mango
rustic carbon
#

You are god's gift in this server

supple plume
#

Time to shower outdoors with the cold wind

fair drift
#

If I got the student subscription on HackTheBox, I would still need to pay for the exam's voucher?

supple plume
#

πŸ’ͺ πŸ’ͺ πŸ’ͺ πŸ’ͺ πŸ’ͺ πŸ’ͺ wish me luck or quick death

rustic carbon
#

Literally you saved me a lot of times man πŸ₯²

eternal mango
#

All good, you're welcome πŸ™‚

rustic carbon
#

I didnt know I could do the other half of those

eternal mango
#

Gonna go game for a bit before bed now, nn

rustic carbon
#

I didnt know I could compete with others in htb bro psyduck

#

NOW I am motivated

eternal mango
#

..I've raised that internally too, I don't think it should be there

fair drift
# eternal mango Yes

Shit. That's odd because if I am not mistaken HTB themselves recognize that their certs aren't recongized by employers lol

rustic carbon
#

And I got excited

eternal mango
#

Where on earth did you see us say we say they are not?

#

🀣

cloud osprey
rustic carbon
#

Why are battlegrounds no longer a thing sadglas

#

I would be in the website 24/7 prolly even guru by now

#

lmao

sharp shuttle
#

its obvious

fair drift
eternal mango
#

Well, everyone is welcome to their opinion

cloud osprey
#

they can have my opinion too

eternal mango
#

But an opinion does not mean fact for all

rustic carbon
sharp shuttle
rustic carbon
eternal mango
#

Besides, nowhere there did "htb recognize our certs aren't recognized"

rustic carbon
#

Because if I say it they dont listen

eternal mango
#

You're just talking bs on that point

rustic carbon
sharp shuttle
cloud osprey
rustic carbon
#

personally if I enjoy what Im doing and I see it as entertaining more than homework I grind even more

fair drift
sharp shuttle
#

thats what happened to battlegrounds

#

the lack of randomness made them speedrunning problems

eternal mango
# rustic carbon Why are battlegrounds no longer a thing <:sadglas:751888349136027678>

https://roadmap.hackthebox.com/changelog/battlegrounds-is-being-retired-on-htb-labs

All I've got for you tbh, but imho we couldn't at that time focus on building it out further, and as such usage of it was very low.. I wouldn't be surprised if we did something else in the future in the same vein

Battlegrounds is being retired on HTB Labs | Hack The Box Changelog

The arena served its purpose, and now it’s time to pull the plug. We’re officially retiring Battlegrounds on June 25th as we shift our focus to new and

rustic carbon
sharp shuttle
eternal mango
rustic carbon
#

that makes sense

modest pasture
#

hello guys anyone did "giveback" recently ?

eternal mango
#

Just.. if you say something, make sure you say it in fact

rustic carbon
#

Yeah that makes sense

sharp shuttle
fair drift
#

Lol this guy reads half way through only

rustic carbon
eternal mango
rustic carbon
#

A month before I started cybersec

eternal mango
#

The thread you refer to doesn't show that at all

elder inlet
#

Hmmmmm wonder what my computer is doing

sharp shuttle
elder inlet
sharp shuttle
eternal mango
#

What you said made it sound like HTB, the company, stated that

#

Surely you can see the confusion?

rustic carbon
#

When you guys are done I want an advice before I peace out until Friday

fair drift
# eternal mango The thread you refer to doesn't show that at all

Well, it does show somebody talking about their experience with employers not recognizing the cert. Maybe he's not the CEO of HTB yeah, but the server is full of examples so it's not exactly the point whether they are shareholders or not. Anyway, I appreciate your clarification

sharp shuttle
rustic carbon
#

But red team style

sharp shuttle
#

"red team style"

#

nobody uses 1337 speak broski

rustic carbon
#

But its less blue team

rustic carbon
sharp shuttle
#

@amber peak

#

wow two different people

#

so confusing

cloud osprey
rustic carbon
#

dope pfp tho

cloud osprey
sharp shuttle
#

lame

#

we can never have cool vr games

rustic carbon
#

So I want your last advice before I peace out...

#

can I?

sharp shuttle
#

dont ask to ask

#

just shoot and let the kangaroo court deal with it

eternal mango
# fair drift Well, it does show somebody talking about their experience with employers not re...

That's fair enough, as I said everyone has their opinion and I welcome it, and it's true not every company sees every certification in the same way, nor has every company heard of or has knowledge of every cert out there, but as a relatively new company I think we're doing pretty well.

Gonna go game for a bit, but what I'll leave you with is.. many times I've heard from community members who have fed back stating HTB, either purely due to the Labs, Academy or Certifications have directly led them in to and landed them a position in the field. When I hear that, it melts my heart.

I'm not trying to pretend we're known by everyone, nor am I saying we're the defacto in security for everyone.. there's no right answer when it comes to skills and certification

#

..but the fact we are helping, that's what matters

orchid talon
#

finished 4 machine through openvpn

sharp shuttle
#

but anyways, proud of you

rustic carbon
#

So I've been stuck on noob for 2 months here, aka I made no practical progress but made a lot of academic progressπŸ’€ - Which has to change. My plan is to finish the last module (Active Directories) on the Information Security Foundations path and then go to Jr Cybersec Analyst path to finish CJCA, then CPTS.. so on and so on..
Now, the question is, since Im gaining more theoretical knowledge and no practical skills, what do you recommend me to do? Im thinking either watching ippsec's easy retired boxes, or even wait it out until I'm in the penetration tester path and take months until I get practical skills to finish matchines etc etc...
I need serious help with this, like desperately sadglas

orchid talon
sharp shuttle
sharp shuttle
#

you should be running a vm of kali, parrot, or whatever OS you like

eternal mango
#

Gonna go shout at clouds

orchid talon
#

yea i was using kali iso

sharp shuttle
#

amazing

maiden anvil
orchid talon
#

idk if thats the best but it works

sharp shuttle
#

vbox works, and its free

#

free is good

#

responding to you now retro.

elder inlet
sharp shuttle
#

there is nothing wrong with using a walkthrough to learn

plush zephyr
#

Heylo @eternal mango

supple plume
#

Im back

plush zephyr
#

How you doing

eternal mango
rustic carbon
eternal mango
#

Hey Lanex, I'm ok thanks, how're you?

sharp shuttle
rustic carbon
#

I dont have a way unfortunately tho..

#

I dont have any practical skills

sharp shuttle
#

what does that mean

#

im going to be real retro

plush zephyr
rustic carbon
#

Everything I have is pure theory from academy

supple plume
plush zephyr
#

Have you taken any new photos?

supple plume
#

But that's my opinion

plush zephyr
#

Also, guess what!!!!!!

sharp shuttle
#

this @orchid talon guy was here yesterday with practically no experience and hes already done more than you after two months, it sounds like you are lazy to me, retro

plush zephyr
#

I am planning to buy a camera soon

rustic carbon
#

It's not really laziness

rustic carbon
#

I think Im doing something wrong that's what

sharp shuttle
rustic carbon
eternal mango
rustic carbon
#

For me they were so last year

sharp shuttle
rustic carbon
#

Plus my laptop is not a gaming

eternal mango
#

I got an FPV drone recently so got a load of videos from that, but they all have my daughter in so won't share those publicly

sharp shuttle
#

then you have no real excuse for why you cant do a retired machine once a day

eternal mango
#

Sooo much fun

plush zephyr
eternal mango
#

It'll be visible through late nov and peaks in dec

#

so I'm sure there will be some clear nights

eternal mango
#

Hope to be able to capture its weird glow

rustic carbon
#

I dont want to do matchines just to do them.. I want to do them and understand how I did them

sharp shuttle
#

start the machine and work through it

robust token
#

Fake it until you make it

eternal mango
#

Anyway.. game time finally, before it's too late 🀣 catch you later, will let you know if / when I get any decent captures

robust token
rustic carbon
#

Idk if that's a weakness

supple plume
sharp shuttle
#

the way you talk frustrates me, unconfidence is pathetic

rustic carbon
plush zephyr
#

Also i wanted to get your opinion on the cam i was buying

sharp shuttle
#

get a grip

rustic carbon
#

..fine

sharp shuttle
#

and i will be here to celebrate your first pwn

rustic carbon
#

I'll give updated by friday sadglas

sharp shuttle
#

ill hold you to it

rustic carbon
#

But the damn easy ones..

robust token
#

Basically the best advice anyone can give you is don’t overthink it

#

Just do it

rustic carbon
#

Alright thank you so much dudes

orchid talon
rustic carbon
#

Highly appreciate the help

supple plume
orchid talon
#

someone do embedded thanos

sharp shuttle
rustic carbon
#

If I leave the server it's because Im removing distractions

sharp shuttle
#

good call

eternal mango
#

Everyone starts somewhere, confidence is built upon experience, it's not innate. Lacking confidence is not a sign of weakness, but it can be a driving force behind self improvement, by learning, doing, sharing.

#

Do what you can, learn, practice, experiment and build your own way

#

There's nothing wrong with standing on the backs of giants, and using knowledge shared to build your own skill set

signal mica
#

does bradly dare to

rustic carbon
#

Literally we might have the same mindset but Im on the other side of the table now

sharp shuttle
rustic carbon
#

I'm not thinking straight because I'm stressing about it

rustic carbon
robust token
#

Stressing about what? Breaking a lab ? sadglas

rustic carbon
sharp shuttle
#

ive learned nobody else will talk to you kids like i do, which is a problem. You automatically think its hostility, its truly sad

signal mica
#

brath how good is your hardware - specifically for hashcat cracking

sharp shuttle
signal mica
rustic carbon
rustic carbon
#

Even tho you werent fully accurate of why you sure did a job

sharp shuttle
#

so prove me wrong

sharp shuttle
orchid talon
#

worst that can happen is you accidentally have 2 windows trying to dual boot into kali

rustic carbon
#

Yeah true now that I think about it

#

I was super idle this week unlike the other weeks

#

Yeah.. you're right

#

Alright homies

#

Going MIA

#

See you in Friday

supple plume
sharp shuttle
#

good luck

supple plume
orchid talon
#

if i pay for vip+ does that include labs and academy?

orchid talon
#

bruh

supple plume
#

Unfortunately labs and academy are totally separated

supple plume
#

Also prolabs are not included in vip+

sharp shuttle
#

nope

supple plume
#

Prepare your whole ass budged

#

To be spent if you want to learn the good stuff

desert cargo
#

Ello

orchid talon
#

not all of us are millionaires

sharp shuttle
#

and there is a extremely high chance you never will be

supple plume
granite sedge
sharp shuttle
#

im more concerned about drinkable water

orchid talon
sharp shuttle
desert cargo
granite sedge
sharp shuttle
granite sedge
#

Super random question, would someone who has submitted a CVE before do a double take on my CVE write up? I'll credit you if it goes through

desert cargo
#

I think thats forbidden actually

granite sedge
#

It'd be forbidden to share it indiscriminately

supple plume
#

That reminded me the guy that offered reviewing the whole bug bounty report before submitting

granite sedge
#

Mine is already submitted on github disclosure I just wanted someone to double check if I've missed anything